mslbfoprovider.sys

Microsoft Load Balancing/Failover Provider

Microsoft Corporation

It runs as a Windows 64-bit kernel mode device driver named “Microsoft Load Balancing/Failover Provider”. It is installed with the Windows 8 pre-release build (RTM).
Publisher:
Microsoft Corporation

Product:
Microsoft® Windows® Operating System

Description:
Microsoft Load Balancing/Failover Provider

 
Part of the Windows 8.1 (Blue) Operating System

Version:
6.3.9600.16384 (winblue_rtm.130821-1623)

MD5:
c3e415e02890d2a0a19a128e9f0abd80

SHA-1:
97c9586e29fc094b38bc623f89f9f7f345a44492

SHA-256:
ac9520a4df69cd6dfbd66e1be04dc2a009f3bd0a2edc36d4b18f02f01ca379c5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
12/3/2016 10:58:40 PM UTC  (today)

File size:
113 KB (115,712 bytes)

Product version:
6.3.9600.16384

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
MsLbfoProvider.sys.mui

File type:
Driver (Win64 SYS)

Language:
Language Neutral

Common path:
C:\Windows\System32\drivers\mslbfoprovider.sys

File PE Metadata
Compilation timestamp:
5/3/2014 9:38:26 AM

OS version:
6.3

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
1536:Dxex+s9Y5S8tglG7v6M0/UgAefg1utCNCF6uWHsxUL0RYtb8:Nmju5xtLv6M0/nSutYyHx49S

Entry address:
0x1155C

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, F7, 8E, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, 7A, 8A, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, 59, 3A, 00, 00, 75, 10, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 01, C3, 48, C1, C9, 10, E9, 02, 00, 00, 00, CC, CC, B9, 02, 00, 00, 00, CD, 29, CC, 48, 83, EC, 28, 4D, 8B, 41, 38, 48, 8B, CA, 49, 8B, D1, E8, 0D, 00, 00, 00, B8...
 
[+]

Code size:
86.5 KB (88,576 bytes)

Driver
Display name:
Microsoft Load Balancing/Failover Provider

Service name:
MsLbfoProvider

Type:
Kernel device driver (KernelDriver)

Group:
NDIS